CVE-2025-1974 — exposed on the internet
CVE-2025-1974: CWE-653 Improper Isolation or Compartmentalization in kubernetes ingress-nginx
Internet exposure observed by OffSeq scans · last 30 days
Found on 5 internet-exposed hosts by OffSeq scans; no in-the-wild exploitation has been observed against OffSeq honeypots in this window.
About CVE-2025-1974
A security issue was discovered in Kubernetes where under certain conditions, an unauthenticated attacker with access to the pod network can achieve arbitrary code execution in the context of the ingress-nginx controller. This can lead to disclosure of Secrets accessible to the controller. (Note that in the default installation, the controller can access all Secrets cluster-wide.)
Vendor: kubernetesCWE-653
OffSeq internet scanning found CVE-2025-1974 on 5 exposed hosts in the last 30 days. OffSeq honeypots have not recorded in-the-wild exploitation of this CVE in the current window — this page tracks its exposure footprint and status; if exploitation begins, the live honeypot signal will appear here.
Exposed-host countries
Exposed via
kubernetes